Skip to content

← All integrations

Cloud service

Imports the certificate into ACM. Services that use the certificate's ARN get the new one on reimport.

The appliance runs the package and connects to AWS Certificate Manager through AWS API over HTTPS on port 443. No agent is installed on AWS Certificate Manager.

What happens

  1. The appliance connects to AWS Certificate Manager through AWS API on port 443.
  2. The certificate is imported into ACM. On renewal it is reimported on the same ARN. If it fails: Rollback can delete a new certificate that is not in use. A reimport can only be reversed with the previous key, which ACM does not hand out.
  3. Verification: the package checks that the certificate exists in ACM.

Technical details

Connection
The package runs on the appliance, which connects over HTTPS to AWS API, port 443. No agent is installed.
You need
IAM user or role with acm:ImportCertificate, acm:DescribeCertificate, acm:ListCertificates, acm:GetCertificate and acm:DeleteCertificate (API Key + Secret). Rollback uses the last two.
Actions
Discovery, Installation, Verification, Rollback
Packages
aws-acm-api

Get started